Gnome-PTY-Helper UTMP Hostname Spoofing Vulnerability
BID:15004
Info
Gnome-PTY-Helper UTMP Hostname Spoofing Vulnerability
| Bugtraq ID: | 15004 |
| Class: | Input Validation Error |
| CVE: |
CVE-2005-0023 |
| Remote: | No |
| Local: | Yes |
| Published: | Oct 03 2005 12:00AM |
| Updated: | Jul 12 2009 05:06PM |
| Credit: | Paul Szabo <[email protected]> disclosed this vulnerability. |
| Vulnerable: |
GNOME vte GNOME libzvt2 1.4.2 Debian Linux 3.1 sparc Debian Linux 3.1 s/390 Debian Linux 3.1 ppc Debian Linux 3.1 mipsel Debian Linux 3.1 mips Debian Linux 3.1 m68k Debian Linux 3.1 ia-64 Debian Linux 3.1 ia-32 Debian Linux 3.1 hppa Debian Linux 3.1 arm Debian Linux 3.1 amd64 Debian Linux 3.1 alpha Debian Linux 3.1 Debian Linux 3.0 sparc Debian Linux 3.0 s/390 Debian Linux 3.0 ppc Debian Linux 3.0 mipsel Debian Linux 3.0 mips Debian Linux 3.0 m68k Debian Linux 3.0 ia-64 Debian Linux 3.0 ia-32 Debian Linux 3.0 hppa Debian Linux 3.0 arm Debian Linux 3.0 alpha Debian Linux 3.0 |
| Not Vulnerable: | |
Discussion
Gnome-PTY-Helper UTMP Hostname Spoofing Vulnerability
'gnome-pty-helper' is susceptible to a local UTMP hostname spoofing vulnerability. This issue is due to the failure of the application to properly validate user-supplied data prior to using it to update UTMP records.
This vulnerability allows users to spoof remote hostname information in UTMP records. This may aid attackers by misdirecting administrators and users as to the correct origin of the attacker.
'gnome-pty-helper' is susceptible to a local UTMP hostname spoofing vulnerability. This issue is due to the failure of the application to properly validate user-supplied data prior to using it to update UTMP records.
This vulnerability allows users to spoof remote hostname information in UTMP records. This may aid attackers by misdirecting administrators and users as to the correct origin of the attacker.
Exploit / POC
Gnome-PTY-Helper UTMP Hostname Spoofing Vulnerability
A proof of concept exploit has been provided by Paul Szabo <[email protected]>:
A proof of concept exploit has been provided by Paul Szabo <[email protected]>:
Solution / Fix
Gnome-PTY-Helper UTMP Hostname Spoofing Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Gnome-PTY-Helper UTMP Hostname Spoofing Vulnerability
References:
References: